HTTP: Gallery Embedded USER AUTH Bypass

This signature detects attempts to exploit a known vulnerability in Gallery, a Web-based photo album application written in php. Attackers can bypass user authorization to gain administrative privileges.

Extended Description

Successful exploitation enables attackers to access to Gallery as an administrator and to perform any actions on any albums.

Short Name
HTTP:PHP:GALLERY:EMBED-AUTH
Severity
Major
Recommended
False
Recommended Action
Drop
Category
HTTP
Keywords
AUTH Bypass Embedded Gallery USER
Release Date
06/03/2004
Supported Platforms

srx-branch-12.3

srx-19.3

srx-branch-19.3

vsrx3bsd-19.2

srx-branch-19.4

vsrx-19.4

mx-12.3

mx-19.4

vmx-19.4

mx-19.3

vsrx3bsd-19.4

srx-19.4

vsrx-12.3

vmx-19.3

vsrx-19.2

srx-12.3

Sigpack Version
3375
False Positive
Unknown

Found a potential security threat?